mitre-attack / mitre-attack/attack-navigator

Attack Navigator import for Mitre MBC Objectives, Behaviors and Methods Matrix

Open
#689 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
TypeScript
Stars
2.5k
Forks
715
Avg merge
7h 33m
Merged PRs (30d)
4

Description

Hi,

Your Attack Navigator iFrame is awesome, congratulations. I love the way it is configurable by json, its very nice, thank you. We plan to use it inside our open-source low-code Stix Incident system on release.

How Can We Load the Mitre MBC Matrix?

The Mitre Malware Behavior Catalog MBC Project is also very well constructed, but not funded as well, possibly as there are fewer malware folks, than cybersecurity folks.

Is there any way to load this excellent MBC project in the Attack Navigator, in addition to the AT&CK layers?

Consider that they have a:

Can you advise/help on constructing an MBC layer?

I know its a bit out of your provenance, but there is a lot of good work in there.

This content looks a lot like yours, and it was once from your organisation. Can you help/advise what could/should be done for a layer file to be generated?

Can one import non-ATT&CK data into Attack-Navigator?

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Start with the Attack Navigator iframe and its JSON layer configuration, then review the linked MBC STIX and Markdown repositories to understand the proposed inputs. The issue does not identify an implementation entry point or acceptance criteria; done would require defining and implementing a supported path for importing or generating MBC layers.

Written by the indexing model from the issue text.

Assessment

Tech stack
typescript
Domain
frontend, security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
25/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.